Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-47155

Опубликовано: 18 мар. 2024
Источник: debian
EPSS Низкий

Описание

The Net::IPV4Addr module 0.10 for Perl does not properly consider extraneous zero characters in an IP address string, which (in some situations) allows attackers to bypass access control that is based on IP addresses.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libnetwork-ipv4addr-perlunfixedpackage
libnetwork-ipv4addr-perlpostponedtrixiepackage
libnetwork-ipv4addr-perlpostponedbookwormpackage
libnetwork-ipv4addr-perlno-dsabullseyepackage
libnetwork-ipv4addr-perlpostponedbusterpackage

Примечания

  • https://blog.urth.org/2021/03/29/security-issues-in-perl-ip-address-distros/#net-ipv4addrhttpsmetacpanorgreleasenet-ipv4addr

EPSS

Процентиль: 17%
0.00054
Низкий

Связанные уязвимости

CVSS3: 9.1
ubuntu
почти 2 года назад

The Net::IPV4Addr module 0.10 for Perl does not properly consider extraneous zero characters in an IP address string, which (in some situations) allows attackers to bypass access control that is based on IP addresses.

CVSS3: 9.1
nvd
почти 2 года назад

The Net::IPV4Addr module 0.10 for Perl does not properly consider extraneous zero characters in an IP address string, which (in some situations) allows attackers to bypass access control that is based on IP addresses.

CVSS3: 9.1
github
почти 2 года назад

The Net::IPV4Addr module 0.10 for Perl does not properly consider extraneous zero characters in an IP address string, which (in some situations) allows attackers to bypass access control that is based on IP addresses.

EPSS

Процентиль: 17%
0.00054
Низкий